McCormick & Priore Data Listed by Interlock
On December 09, 2024, the ransomware group Interlock added defense litigation firm McCormick & Priore to its public leak site. The listing states that attackers exfiltrated a large collection of SQL databases along with confidential data belonging to the firm’s employees and clients. The notification does not disclose the total number of records affected or the exact deadline for any ransom payment.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch McCormick & Priore
Get alerted the next time McCormick & Priore files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about McCormick & Priore’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What the Leak Site States
The primary disclosure on the Interlock leak site, accessible via multiple .onion links, claims successful data exfiltration following a ransomware attack. It specifically references SQL databases and confidential employee and client data. No sample files have been published in the initial listing, and the exact volume or sensitivity of the stolen information remains unknown to the public. The disclosure indicates the firm was targeted as part of Interlock’s ongoing campaign against organizations that store sensitive litigation and personal records.
Why This Matters for You and Your Family
If you are a current or former client of McCormick & Priore, or if you or a family member ever worked there, your personal information may now sit on a dark-web leak site. Litigation firms routinely handle Social Security numbers, financial details, medical records, court filings, and correspondence that can be used for identity theft or targeted fraud. Even though the exact data types and record counts are not stated, the confirmed theft of confidential employee and client information creates immediate risk for anyone whose records were stored in those systems.
Doxxing and Identity-Chain Risks
Stolen litigation data rarely stays isolated. Attackers and subsequent buyers can combine employee names, email addresses, and client identifiers with information from other breaches to build complete identity profiles. A single exposed work email can link to personal accounts, home addresses, and family relationships. These chains often extend to children’s gaming accounts that reuse the same passwords or recovery addresses, turning one corporate breach into long-term doxxing exposure across multiple platforms.